cairon
December 10, 2020, 11:45pm
1
Hi there,
the three domains httpbin.org / jsonip.com / ip.42.pl are flodding my DNS Server (Pi-Hole) since some days.
I have 50.000 DNS queries per day only for this three domains.
I don’t know where they come from.
Do you have an idea?
Greets
Daniel
nickrout
(Nick Rout)
December 11, 2020, 1:27am
2
pihole tells you which machine they come from.
1 Like
cairon
December 11, 2020, 7:18am
3
Yes, they come from the Home Assistant. That’s why I am asking here
But I don’t know which part of Home Assistant is causing them.
I think it is since I had to reinstall from scratch with the 4.16 image but I am not sure.
nickrout
(Nick Rout)
December 11, 2020, 8:06am
4
Maybe you should have said so.
nickrout
(Nick Rout)
December 11, 2020, 8:14am
5
I think that these are unlikely to be coming from home assistant. Those domain names are not mentioned in the home assistant core codebase as far as I can see.
cairon
December 11, 2020, 8:32am
6
Yes, that’s what I can see, too. I don’t find any mentions for those domains. But the queries are coming from the Home Assistant IP address (100%)
I also blocked these domains to see if there is any integration or so which isn’t functionable any more, but nothing … HA is working perfectly.
nickrout
(Nick Rout)
December 11, 2020, 10:47pm
7
What custom components and/or addons are you using?
cairon
December 15, 2020, 11:19am
8
HACS, Node-RED, ICS, Fritz!Box Tools, Deutscher Wetterdienst, Average, Huesensor, O365
nickrout
(Nick Rout)
December 15, 2020, 6:35pm
9
I suggest you check those addons.
cairon
December 23, 2020, 7:38pm
10
Found the source. It was the Glances plugin while getting the public ip and write it to InfluxDB.
The thing is that I am monitoring Glances in the HA Database and there is absolutely no need to write the data to InfluxDB as well.
1 Like